Today
Secret
Unspecified
Unspecified
IT - Security
Alexandria, VA (On-Site/Office)
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™
ASRC Federal is seeking a Vulnerability Assessor to support the Department of Defense Education Activity (DoDEA) Enterprise Cyber Program. This position is located in Alexandria, VA (Hybrid - Telework with periodic on-site support as required).
Active Secret Clearance Required
The Vulnerability Assessor will identify, analyze, and track system vulnerabilities to strengthen the organization's cybersecurity posture and ensure compliance with DoD Risk Management Framework (RMF) requirements. This role supports Continuous Monitoring (ConMon) activities and works closely with cybersecurity and system teams to enhance DoDEA's enterprise-wide security operations.
Responsibilities
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
ASRC Federal is seeking a Vulnerability Assessor to support the Department of Defense Education Activity (DoDEA) Enterprise Cyber Program. This position is located in Alexandria, VA (Hybrid - Telework with periodic on-site support as required).
Active Secret Clearance Required
The Vulnerability Assessor will identify, analyze, and track system vulnerabilities to strengthen the organization's cybersecurity posture and ensure compliance with DoD Risk Management Framework (RMF) requirements. This role supports Continuous Monitoring (ConMon) activities and works closely with cybersecurity and system teams to enhance DoDEA's enterprise-wide security operations.
Responsibilities
- Conduct vulnerability scans using ACAS (Tenable/Nessus), STIG Viewer, and related DoD-approved assessment tools.
- Categorize and analyze vulnerabilities in accordance with NIST SP 800-53, DISA STIGs, and DoDI 8510.01 (RMF).
- Collaborate with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), and system administrators to track remediation and update Plans of Action and Milestones (POA&Ms).
- Prepare and maintain vulnerability assessment reports and risk summaries for leadership.
- Support RMF Steps 3-6 and Continuous Monitoring documentation within eMASS.
- Research and evaluate emerging technologies to identify new or evolving risks and recommend mitigation strategies.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related discipline (four additional years of equivalent experience may substitute).
- 2-4 years of cybersecurity or vulnerability management experience.
- Active DoD Secret clearance
- DoD 8570.01-M IAT Level II certification (e.g., Security+ CE, CySA+, CCNA-Security).
- Hands-on experience with ACAS (Tenable/Nessus) and STIG compliance tools.
- Strong analytical, documentation, and communication skills.
- Working knowledge of vulnerability scanning, risk assessment methodologies, and remediation tracking.
- Familiarity with DoD RMF, eMASS, and DISA STIG/SRG compliance.
- Understanding of NIST SP 800-53, CNSSI 1253, and DoDI 8510.01 frameworks.
- Knowledge of common cybersecurity threats, exploits, and attack vectors.
- Experience supporting federal or DoD IT environments.
- Positive, proactive approach and ability to collaborate effectively across remote and on-site teams.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
group id: RTL208333
ASRC Federal Building Careers